Log4j stories
Orca Security flags AI secrets & supply chain gaps
Last week
#
malware
#
devops
#
mfa
Orca Security warns that AI credentials, vulnerable dependencies and lax pipeline controls are leaving production environments exposed across US and Europe.
SonicWall flags SMB cyber gaps as attacks rise 20.8%
This month
#
firewalls
#
vpns
#
ransomware
SonicWall says small firms are being hit hardest by basic security lapses as ransomware, bot traffic and identity theft keep climbing.
Cobalt adds AI features to boost continuous pentests
Last month
#
devops
#
cloud security
#
application security
Cobalt weaves AI into its pentesting platform, automating recon and triage while keeping human experts on complex attack paths.
GitHub backs Alpha-Omega with fresh open source funds
Last month
#
siem
#
hyperscale
#
application security
GitHub joins tech giants in a USD $12.5 million Alpha-Omega push, boosting AI-powered defences for critical open source software.
Open source dependencies leave apps dangerously exposed
Last month
#
uc
#
digital transformation
#
application security
Secure.com warns most apps hide critical flaws in open source components, as unpatched dependencies and licence risks leave firms exposed.
Chainguard extends secure libraries to Python, Java, JS
Fri, 27th Feb 2026
#
application security
#
devsecops
#
supply chain
Chainguard expands its rebuilt-from-source Libraries to Python, Java and JavaScript, targeting malware risks in AI-driven software supply chains.
Azul & Chainguard partner on zero-CVE Java containers
Thu, 19th Jun 2025
#
devops
#
supply chain
#
apm
Azul and Chainguard have teamed up to offer zero-CVE Java containers, enhancing security and support for enterprise Java workloads with Hardened, source-built images.
Azul boosts Java security with improved runtime vulnerability detection
Fri, 13th Jun 2025
#
devops
#
application security
#
apm
Azul's Intelligence Cloud now cuts Java security false positives by up to 99%, using runtime data to boost vulnerability detection accuracy for DevOps teams.
Azul unveils Java tool to cut false positives by up to 99%
Wed, 11th Jun 2025
#
devops
#
application security
#
apm
Azul has launched a Java vulnerability tool that cuts false positives by up to 99%, improving threat detection accuracy for production environments.
Fewer than 40% of firms have full visibility over software supply
Thu, 15th May 2025
#
devops
#
supply chain
#
apm
Less than 40% of firms fully see their software supply chains amid rising security threats and new EU and US cybersecurity regulations.
Most organisations lack visibility into software supply chains
Thu, 15th May 2025
#
devops
#
supply chain
#
apm
Fewer than 40% of organisations have full visibility into their software supply chains, exposing risks amid rising cybersecurity concerns and regulation.
NetRise launches AI tool to spot unknown software weaknesses
Wed, 30th Apr 2025
#
manufacturing
#
supply chain
#
risk & compliance
NetRise launches ZeroLens, an AI tool that detects undisclosed software weaknesses in compiled code, aiming to prevent cyberattacks before vulnerabilities emerge.
88% of companies consider ditching Oracle Java costs
Fri, 31st Jan 2025
#
devops
#
apm
#
ai
A survey by Azul reveals that 88% of enterprises are exploring alternatives to Oracle Java, citing rising costs and cloud expense concerns as key factors.
Sonatype launches SBOM Manager to enhance software security
Mon, 8th Jul 2024
#
saas
#
partner programmes
#
supply chain
Sonatype releases its SBOM Manager, a crucial tool to help organisations track and manage software components.
Cloudflare reports 25% spike in global traffic & rise in cyber threats in 2023
Mon, 18th Dec 2023
#
hyperscale
#
public cloud
#
it automation
Cloudflare reveals a 25% surge in global internet traffic and heightened cybersecurity threats in its 2023 report.
72% of organisations remain vulnerable to Log4j vulnerability
Thu, 1st Dec 2022
#
breach prevention
#
cybersecurity
#
data breach
The data highlights legacy vulnerability remediation challenges, which are the root cause of the majority of data breaches.
Log4Shell threat remains extremely high - Barracuda
Thu, 3rd Mar 2022
#
firewalls
#
ddos
#
breach prevention
The quantity of cyber attacks targeting the Log4Shell complex of vulnerabilities in Log4j still remains extremely high, according to Barracuda Networks.